Sign inSign up
Console for Red Hat OpenShift

dhi.io/openshift-console

Console for Red Hat OpenShift 4.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4.22, 4.22-debian, 4.22-debian13, 4.22.15, 4.22.15-debian, 4.22.15-debian13

Index digest:

sha256:5d964113845560124655a712113bd048ff1b0fb942fae3bedcee31431375ecbf

Manifest digest:

sha256:b1aac58d9d684c1b2c8b473ce903beabcca9467cadd422e1236eaa1cf4eb207e

Size

26.59 MB

Last pushed

1 day ago

Vulnerabilities

0
4
5
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/openshift-console:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/openshift-console:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/openshift-console@sha256:a7b413c5fdc3a4c0da21ec115afabd678a07f808481d67e505d4fd0a288cfb18
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/openshift-console@sha256:b9255ca39e5b383b7fa2a72af4d319c188b3a3aa565b58475f84dc02d17c1db4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/openshift-console@sha256:28481f7c41f79ac0ca458d9e5f7c38116b0d4b1aca1e84e8b4e19de0e8edbe67
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/openshift-console@sha256:e48e851c0f539a2b91188b8786d96c4bb15e6bba088127b45c8fccbbae1716a9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/openshift-console@sha256:58c9b7921b6b6502e5660ec4e14c316203745c663b5bb6fb2c0f6257c22731f4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/openshift-console@sha256:e29c09db0ec053798f7689c865821d09ab022bbc39d2c0e3aab48b6973be6d9d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/openshift-console@sha256:e366cb0aa10e5fe147c4df1b248372e8bdd9a70f9c182857cc1e52e441dd2d4f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/openshift-console@sha256:91f21212d3c16fda8893bef4c9cdafbe8393cf8c85469be1920e290539eaad8a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/openshift-console@sha256:7a53c3a5251e0c82e233f48c5cff8fcd1ed108be87cdb54da17cac5e96dcf57f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/openshift-console@sha256:d6ad76983b4d340d9f7e2d6b387510aa0477b8f1e441a64bb385b01ac2c56266
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/openshift-console@sha256:2611a7052378f845179d95b39171dab9008445ec2dc10bb1fd155866529a7fb0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/openshift-console@sha256:012fafdd6295e77f6c094591dd034975a149b6adcc01e2fd3e2bf5cdd4f35b96
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/openshift-console@sha256:5caa05a8703788bb4f5535ee00de820c6f4a8afe868af884c4d004d00743a5c0
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/openshift-console@sha256:889e60acb2caabb4b997de5d158ddf21e475a702f6414bf4bcf254a0a6df6491
SPDX SBOMhttps://spdx.dev/Documentdhi.io/openshift-console@sha256:f7dc9041491442053cfc80d664b66c2d00c8ea3279a4bf79a3463f3299153d84